Privacy Policy

Introduction 

Resonate Testing Ltd (“Resonate Testing”, “we”, “our”, or “us”) is committed to protecting your privacy and handling personal data in accordance with applicable data protection legislation, including the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018 and, where applicable, the EU General Data Protection Regulation (EU GDPR).

This Privacy Policy explains how we collect, use, store, share and protect personal data when you use our website, contact us, engage our services, attend our events, or otherwise interact with us.

Please read this Privacy Policy carefully. By using our website or services, you acknowledge that your personal data will be processed in accordance with this Privacy Policy.

If you have any questions about this Privacy Policy or wish to exercise your data protection rights, please refer to the “How to Contact Us” section below.

 

1. What Information Do We Collect?

We only collect personal information that we need to serve you and run our business effectively. This may include:

  • Contact Information: When you interact with us – for example, requesting a quote, signing up for a webinar, or contacting us – you might provide personal details such as your name, company, job title, email address, phone number, or mailing address. We collect these details directly from you (e.g. via website forms, emails, or phone calls) in order to respond to your inquiries and provide our services .
 
  • Service and Transaction Details: If you engage our testing services, we will collect information necessary to carry out the testing contract. This includes details about your organization, the nature of the testing services required, and any data or documentation you provide to facilitate the service. We treat all client technical data and project information as confidential and handle it according to our contractual obligations and security policies (see Security section below).
 
  • Website Usage Data: When you visit our website, we automatically collect some basic technical information to help us understand and improve our site’s performance. This includes your IP address, browser type, pages viewed, and the time and date of your visit . We use Google Analytics and similar tools to gather anonymous statistics about how visitors navigate our site – for example, which pages are most popular – so we can make our content more useful. These tools may use cookies (small text files placed on your device) to collect standard internet log information. See “#do-we-use-cookies-and-tracking-technologies” for more details.
 
  • Marketing Preferences: If you sign up to receive our newsletter or marketing communications, we’ll collect your name and email address, and any topic preferences you indicate. We keep track of your subscription status (opt-in/opt-out) so we only send you relevant information with your consent (you can unsubscribe any time).
 
  • Job Applications: If you apply for a job with Resonate Testing through our website or via email, we will collect the information you provide in your application (such as your resume/CV, contact information, employment history, etc.). We will use this only for recruitment and hiring purposes. A separate Applicant Privacy Notice may apply in such cases (available on our Careers page, if applicable), outlining how we handle candidate information.
 

We do not knowingly collect sensitive personal data (such as information about race, ethnicity, health, biometric or genetic data, etc.) unless it is absolutely necessary and you have explicitly provided it (for instance, if such data is relevant to a specific testing service and you choose to share it with us with consent). We also do not intentionally collect data from children – our services and website are not directed to individuals under 16. If you are under 16, please get permission from a parent or guardian before providing any personal information.

 

2. How Do We Use Your Personal Data?

We use the personal data we collect for the purposes for which you provided it and other compatible business purposes. In particular:

  • Providing Services and Responding to Requests: We use your information to carry out the testing and certification services you request from us. For example, we will use your contact and project details to provide testing results, certifications, and reports to you. If you contact us with questions, we will use your contact information and any details you give us to respond and assist you.
 
  • Business Operations and Improvements: We analyze usage data and feedback to improve our services and website functionality. For instance, understanding which pages or service offerings are most visited helps us enhance our website content. We may also use your information to personalize your experience – for example, remembering your preferences or past interactions so our communications with you are more relevant.
 
  • Legal and Contractual Obligations: When we enter into a contract with you (for example, a testing agreement), we will use and retain whatever data is needed to fulfill that contract. We also process personal data as required to comply with our legal obligations – such as maintaining proper financial records, complying with audit and accreditation requirements, or responding to lawful requests from government authorities.
 
  • Security and Fraud Prevention: It’s in our legitimate business interests (and often our legal duty) to ensure the security of our systems, website, and customers. We may process personal data (such as IP addresses or login information) to monitor for suspicious activities on our networks, prevent unauthorized access to our facilities or IT systems, detect fraud or other illegal activities, and enforce our Acceptable Use policies. For example, we may use tools to detect malware or unauthorized intrusions, and if you visit our offices, we may check identification and require signing of NDAs or visitor logs for security   . These activities protect both Resonate and our clients.
 
  • Marketing (With Your Consent): If you have opted in to receive marketing communications (for example, if you subscribed to our newsletter or requested updates), we will use your contact details to send you news about Resonate Testing’s services, industry insights, upcoming events or webinars, and other information we think may be of interest. We strive to make these communications on-point with our brand voice: helpful, informative, and never excessive. You can opt out of marketing emails at any time by clicking the “unsubscribe” link in any message or by contacting us directly. We do not engage in “spam” – you will only hear from us if you have chosen to.
 

We will not use your personal data for purposes that are incompatible with the above, unless we obtain your consent. We do not use personal data for automated decision-making that has legal or similarly significant effects on you, except where permitted by law and with appropriate safeguards (see below).

 

3. Do We Share Your Information with Others?

We do not sell or rent personal data to third parties. We consider the information you share with us to be confidential. We will only share your data with third parties in the following cases:

  • Service Providers: We may disclose your information to trusted third-party service providers who work on our behalf to help deliver our services or run our business. For example, we might use cloud storage providers to securely host test data, an email service to send you reports or updates, or payment processors to handle billing. When we share data with vendors like these, we ensure there is a contract in place that requires them to protect your information and use it only for the agreed purpose .
 
  • Business Partners: In some cases, we partner with other organizations (for example, in a joint testing project or an industry event). If it’s necessary to share your information in such a context, we will do so only with your knowledge or consent. (For instance, if you sign up for a co-hosted webinar or industry roundtable, with your permission we might share your registration details with our partner organizing the event.)
 
  • Legal Requirements and Protection: If we are legally required to disclose your information – for example, due to a court order, regulatory requirement, or audit – we will comply with the law. We may also share information as needed to enforce our contracts or protect the rights, safety, or property of Resonate Testing, our employees, our clients, or others (for instance, to prevent fraud or cyberattacks).
 
  • Corporate Transactions: If we undergo a business transaction such as a merger, acquisition, or asset sale, your information could be transferred to the successor entity. If that happens, we will ensure your data remains protected and will notify you of any significant changes.
 

Aside from the above, we will not share your personal data with any third parties. In particular, we do not sell personal information to marketing companies or data brokers. You will not receive third-party marketing from us, and we do not allow others to use the data you provide us for their own independent purposes.

 

4. Do We Use Cookies and Tracking Technologies?

Yes, our website uses cookies and similar technologies. Cookies are small text files placed on your device to make websites work efficiently and to provide certain features. For instance, we use cookies to remember your preferences and to gather analytics about how visitors use our site. This helps us improve our website over time. We use trusted third-party tools like Google Analytics, which set cookies to collect anonymous traffic data (for example, which pages are visited most, how you found our site, and how you navigate through it) . This information does not identify you personally, and we use it only to enhance your experience and our services.

When you first visit our site, you will see a banner or pop-up about cookies. Where required by law, we will ask for your consent before using certain cookies. You can always adjust your cookie preferences using your browser settings or through our website’s cookie management tool (accessible via the cookie banner or a “Cookie Preferences” link on our site). You can choose to disable or block non-essential cookies – our site will still function, though some features (like video content or analytics) may be limited.

Do Not Track: Some browsers offer a “Do Not Track” (DNT) feature that signals to websites that you do not want to be tracked. Currently, there is no uniform standard for how to respond to these signals. Given the way our site’s tracking works, we treat Global Privacy Control (GPC) or DNT signals the same as a refusal of non-essential cookies – meaning we will not deploy analytics or marketing cookies if we detect such a signal, consistent with applicable law. (You can also use our cookie settings to achieve the same outcome.)

 

5. How Long Do We Keep Your Data?

We retain personal data only as long as necessary to fulfill the purposes we collected it for, including any legal, accounting, or reporting requirements . In practice, this means:

  • If you are a customer, we will keep your information for as long as you have an active contract or account with us. After that, we may retain certain information for a defined period in case you return or to meet legal requirements (for example, we must keep invoice records for a minimum period for tax and audit purposes).
 
  • If you contacted us for a quote or information but do not engage our services, we will retain your contact information only as long as needed to follow up on your inquiry, plus a short additional period in case you decide to proceed.
 
  • If you have subscribed to marketing communications, we will retain your contact details until you unsubscribe or ask us to delete them (or after a period of inactivity).
 
  • In all cases, we regularly review the data we hold and delete or anonymize information that we no longer need for any lawful purpose. Our internal Data Retention Policy ensures that we don’t keep personal data indefinitely.
 

6. How Do We Protect Your Personal Data?

Resonate Testing implements appropriate technical and organisational measures designed to protect personal data against unauthorised access, loss, alteration, disclosure or destruction. We maintain robust technical and organizational measures to safeguard your information, in compliance with industry standards and legal requirements . These measures include:

  • Secure Systems and Encryption: We store your data on secure servers with up-to-date security protections. We use encryption and access control to prevent unauthorized access to sensitive information. For example, data you submit through our website is encrypted in transit (HTTPS), and critical data is encrypted at rest.
 
  • Access Controls: Only authorized personnel at Resonate Testing can access your personal data, and even then solely on a need-to-know basis . Every employee is bound by confidentiality agreements and is trained in data protection best practices. Our Acceptable Use Policy and Information Security Policy ensure that staff handle data safely – for instance, employees are prohibited from sharing your information without authorization, and they must follow strict password and IT security rules.
 
  • Monitoring and Testing: We monitor our systems to prevent, detect, and respond to any potential security incidents. We also undergo regular audits and maintain certifications (such as ISO 9001 and Cyber Essentials Plus) to validate our security controls and processes .
 
  • Supplier Security: If we use third-party service providers (for example, cloud service or email platform providers) to process personal data, we ensure they meet high security standards. We review our vendors and have agreements in place requiring them to protect your data.
 

While we strive to protect your personal information, please note that no method of transmission over the Internet or electronic storage is 100% secure. However, we continually update and test our security measures to mitigate risks. We also have a detailed Incident Response Plan in place to deal with any data breaches swiftly, including notifying affected individuals and regulators as required by law.

 

7. Your Rights and Choices

Under applicable data protection legislation, you have a number of rights in relation to your personal data. Under applicable data protection laws (including the UK General Data Protection Regulation (UK GDPR) and EU GDPR), you have various rights regarding your personal data. These include:

  • Access Your Data: You can ask us if we’re processing your personal data and request a copy of the data we hold about you.
 
  • Correct Your Data: If any of your information is incorrect or incomplete, you have the right to have it corrected or updated.
 
  • Delete Your Data: You can request deletion of your personal data in certain circumstances – for example, if it’s no longer needed for the purposes for which it was collected, or if you withdraw consent (where the processing was based on consent).
 
  • Object or Restrict Processing: You can object to our processing of your data, or ask us to limit processing, if you believe we do not have a legitimate right to use it or you just want to restrict a specific use. For instance, you can object to us using your data for direct marketing at any time, and we will stop.
 
  • Data Portability: Where applicable, you can request that we provide your personal data to you (or to another service provider) in a commonly used, machine-readable format.
 
  • Automated Decision-Making: Resonate does not typically use automated decision-making that produces legal or similarly significant effects. In the unlikely event that we make a decision about you solely by a computer or algorithm (with no human involvement), you have the right to: be informed about it, request human review of the decision, express your point of view, and contest the decision . (For example, if we ever implemented automated credit checks or screening tools, you would have the right to have a person intervene in that process.)
 

These rights may be subject to certain legal conditions or exemptions – we will explain if any apply, when responding to your request. To exercise your rights, please contact us (see “how to contact us” below). We may need to verify your identity to process certain requests, for your protection.  We will respond to your request as soon as possible, and in any event within the timeframe required by law (normally within one month for UK/EU data rights requests).

If you have an online account with us, you may also be able to access, correct, or delete certain information by logging into your account. For example, if you have subscribed to our mailing list, you can update your contact details or unsubscribe via the preferences link in our emails.

Your Choices: You are in control of your information. In addition to the rights above, you can always choose: not to provide optional personal data; to disable cookies (see Cookies section); or to opt out of marketing communications. Resonate will never penalize you or deny you our services just because you exercise your privacy rights. And of course, we will never discriminate against you for choosing to opt out of the sale of data – but as noted, we don’t sell data anyway. If you have any concerns about your privacy or how to exercise your rights, please reach out to us.

 

8. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our business practices, legal requirements, or to improve clarity. When we make changes, we will update the “Last updated” date at the top of this page. For significant changes, we may also provide a more prominent notice (such as a website banner or an email notification). 

We encourage you to review this Policy periodically to stay informed about how we protect your information. If you continue to use our services or website after a Privacy Policy update, we will take that to mean you acknowledge and accept the revised terms.

 

9. How to Contact Us

We welcome any questions, concerns, or requests you have about your personal data or this Privacy Policy. Please feel free to contact us:

  • Data Protection Officer (DPO): You can reach our DPO by email at TomMallon@ResonateTesting.com . This is the best way to contact us for privacy-related inquiries, such as asking about your data or making a rights request.
 
  • By Post: You may also write to us at: Resonate Testing Ltd, Unit 1, Bridge Technology Park, Carnagat Lane, Newry, BT35 8XF, United Kingdom. Please mark your letter with “Attention: Data Protection Officer”.
 
  • By Phone: For general inquiries, you can call our office at +44 (0)28 9073 6390, but for specific privacy requests we may ask you to also follow up in writing or via email to ensure we accurately understand and log your request.
 

We will respond as promptly as possible to resolve your questions or fulfill your requests. If you’ve contacted us and feel we haven’t adequately addressed your privacy concern, you have the right to contact the Information Commissioner’s Office (ICO) or your local data protection authority. If you are not satisfied with our response, you have the right to lodge a complaint with the Information Commissioner’s Office (ICO) or another relevant supervisory authority.